2022 CVE Vulnerabilities

27,552 CVEs published in 2022.

CVE IDSeverityCVSSDescription
CVE-2022-30929HIGH8.8Mini-Tmall v1.0 is vulnerable to Insecure Permissions via tomcat-embed-jasper.
CVE-2022-30619HIGH8.8Editable SQL Queries behind Base64 encoding sending from the Client-Side to The Server-Side for a particular API used in...
CVE-2022-23714HIGH7.8A local privilege escalation (LPE) issue was discovered in the ransomware canaries features of Elastic Endpoint Security...
CVE-2022-23713MEDIUM6.1A cross-site-scripting (XSS) vulnerability was discovered in the Vega Charts Kibana integration which could allow arbitr...
CVE-2022-23173MEDIUM6.3this vulnerability affect user that even not allowed to access via the web interface. First of all, the attacker needs t...
CVE-2022-23172MEDIUM4.3An attacker can access to "Forgot my password" button, as soon as he puts users is valid in the system, the system would...
CVE-2022-21787MEDIUM6.7In audio DSP, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation...
CVE-2022-21786MEDIUM6.7In audio DSP, there is a possible memory corruption due to improper casting. This could lead to local escalation of priv...
CVE-2022-21785MEDIUM6.7In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalati...
CVE-2022-21784MEDIUM6.7In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalati...
CVE-2022-21783MEDIUM6.7In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalati...
CVE-2022-21782MEDIUM6.7In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalati...
CVE-2022-21781MEDIUM6.7In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalati...
CVE-2022-21780MEDIUM6.7In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalati...
CVE-2022-21779MEDIUM6.7In WLAN driver, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalati...
CVE-2022-21777HIGH7.8In Autoboot, there is a possible permission bypass due to a missing permission check. This could lead to local escalatio...
CVE-2022-21776MEDIUM6.4In MDP, there is a possible use after free due to a race condition. This could lead to local escalation of privilege wit...
CVE-2022-21775MEDIUM6.7In sched driver, there is a possible use after free due to improper locking. This could lead to local escalation of priv...
CVE-2022-21774MEDIUM6.7In TEEI driver, there is a possible use after free due to a race condition. This could lead to local escalation of privi...
CVE-2022-21773MEDIUM6.7In TEEI driver, there is a possible use after free due to a race condition. This could lead to local escalation of privi...
CVE-2022-21772MEDIUM6.7In TEEI driver, there is a possible type confusion due to a race condition. This could lead to local escalation of privi...
CVE-2022-21771MEDIUM6.7In GED driver, there is a possible use after free due to a race condition. This could lead to local escalation of privil...
CVE-2022-21770MEDIUM6.7In sound driver, there is a possible information disclosure due to symlink following. This could lead to local informati...
CVE-2022-21769MEDIUM4.4In CCCI, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disc...
CVE-2022-21768HIGH8.8In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation...

Check if your code is affected by 2022 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now